IPDebrief

119.73.115.115

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target: 119.73.115.115/32

Date: Analysis generated from IPDebrief intelligence platform

Classification: Moderate Risk (Score: 55/100)

---

## EXECUTIVE SUMMARY

IP address 119.73.115.115 presents a moderate risk profile with conflicting geolocation data and multiple blacklist listings. The IP is associated with AS138655 and shows recent threat activity signals. Current network services are firewalled with no open ports detected.

---

## TECHNICAL PROFILE

Risk Assessment

Geolocation Discrepancy

The IP exhibits conflicting geographic indicators:

Network Classification

---

## THREAT INDICATORS

Blacklist Status

Historical Signals (12 observations)

Recent activity from July 29, 2026 indicates:

Control Plane Data

---

## NEIGHBORHOOD ANALYSIS

Subnet: 119.73.115.0/24

Total Neighbors: 48

Abuse Density: 0

Risk Distribution:

Notable Neighbors:

The subnet shows elevated medium-risk activity with no high-risk neighbors detected.

---

## RELATIONSHIP GRAPH

---

## RECOMMENDED ACTIONS

Immediate Recommendations

1. Monitoring: Increase logging verbosity and review recent activity from this IP (Severity: High)

Firewall Rules

iptables:

```

iptables -A INPUT -s 119.73.115.115 -j DROP

```

nftables:

```

nft add rule inet filter input ip saddr 119.73.115.115 drop

```

nginx:

```

deny 119.73.115.115;

```

pfSense:

```

119.73.115.115/32

```

Cloudflare WAF:

```json

{

"description": "Block 119.73.115.115 β€” IPDebrief risk score 55",

"action": "block",

"filter": {

"expression": "ip.src eq 119.73.115.115"

}

}

```

AWS WAF:

```json

{

"Addresses": ["119.73.115.115/32"],

"Description": "IPDebrief risk 55"

}

```

---

## ANALYST NOTES

The geolocation discrepancy between US profile data and Pakistan historical observations warrants investigation. The high-severity DNSBL listings combined with the unstable routing status suggest this IP may be used for transient malicious activities. No active services are currently exposed, but the subnet's 24 medium-risk neighbors indicate potential related infrastructure.

Priority: Monitor and consider blocking based on organizational threat tolerance levels.

---

*This briefing is based on IPDebrief intelligence data. All recommendations are probabilistic and should be validated against additional threat intelligence sources before implementation.*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionUS-NY
CityNew York
TimezoneAmerica/New_York
Latitudeβ€”
Longitudeβ€”

🏒 Ownership & Registration

OrganizationTEC-DATA CORE ENGINEERING TEAM
ASNAS138655
Network NameNaqashband
CIDR Block119.73.112.0/20
RIRAPNIC
CountryPK
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRstatic-host119-73-115-115.link.net.pk
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnamesstatic-host119-73-115-115.link.net.pk

πŸ” DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierTier 3 β€” Basic operator with some routing infrastructure
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
0%
00
Overall12%33
Coverage: 3/6 dimensions Β· Data sufficiency: partial
Data CoherenceMostly Consistent (80%) β€” 1 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Geo sources disagree on country: PK, US

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-24 08:17:54 UTC
Last Seen2026-07-29 22:03:01 UTC
Profile Built2026-07-29 22:10:16 UTC
Data FreshnessLive
Signal Types20
Total Observations20
πŸ” 20 signal types Β· 20 observations collected
This report is generated from 20+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.